1. Host Discovery

1. Netdiscover

netdiscover -i (network interface name) (example: eth0 or tun0)
netdiscover -i eth0
netdiscover -r ip/24

2. ARP

arp -a 

3. Host Discovery using Nmap

ARP Scan

nmap -sn -PR [Target IP Address] 
# -sn used to disable port scanning

ICMP Echo and ICMP Echo Sweep Scan

nmap -sn -PE [Target IP Address]
nmap -sn -PE [Target Range of IP Addresses]

ICMP Timestamp Ping scan

nmap -sn -PP [Target IP Address]

ICMP Address Mask Scan

TCP Syn Ping Scan

TCP ACK Ping Scan

UDP Ping Scan

4. Host Discovery DC on AD

Last updated